What is a Security Engineer at Canva?
At Canva, the mission is to empower the world to design. With a global user base exceeding 170 million active users, securing this massive ecosystem requires a proactive, highly scalable, and developer-friendly security engineering team. As a Security Engineer at Canva, you do not merely act as a gatekeeper; instead, you build the secure paving roads, guardrails, and automated tooling that allow product teams to ship features rapidly without compromising user trust.
The security organization at Canva spans multiple domains, including application security, cloud infrastructure security, detection and response, and security tooling. Your work directly impacts the safety of billions of user designs, sensitive brand assets, and enterprise-grade cloud systems. You will be tasked with solving highly complex problems, such as mitigating massive-scale distributed denial-of-service (DDoS) attacks, securing microservices architectures, and implementing zero-trust networking paradigms across a global footprint.
To succeed in this role, you must possess a strong engineering mindset. Canva values security professionals who can write clean code, automate security checks within continuous integration and continuous deployment (CI/CD) pipelines, and collaborate empathetically with engineering partners. The culture is fast-paced and highly collaborative, requiring you to translate complex security risks into actionable technical solutions that align with Canva's core values, such as "make complex things simple" and "be a force for good."

